Aggregator
SideCopy Hackers Deploy Persistent XenoRAT Malware to Target Afghanistan Finance Ministry
A Pakistan-linked threat group known as SideCopy has launched a focused cyberattack against Afghanistan’s Ministry of Finance, deploying a persistent remote access tool called XenoRAT. The campaign, dubbed Operation XENOFISCAL, targeted provincial finance officials across all 34 Afghan Mustoufiats — regional revenue and finance directorates that form the fiscal backbone of the country. The attack […]
The post SideCopy Hackers Deploy Persistent XenoRAT Malware to Target Afghanistan Finance Ministry appeared first on Cyber Security News.
CVE-2026-45360 | Apache Airflow up to 3.2.1 Import deserialization (WID-SEC-2026-1761)
CVE-2026-42359 | Apache Airflow up to 3.2.1 XCom PATCH Endpoint (WID-SEC-2026-1761)
CVE-2026-42360 | Apache Airflow up to 3.2.1 information disclosure (WID-SEC-2026-1761)
ENISA NIS360 2026: la fotografia impietosa della cyber security nei settori critici NIS2
Microsoft says it will not pursue security researchers after zero-day backlash
INC
You must login to view this content
INC
You must login to view this content
Webinar tomorrow: From alert to resolution in network incident response
Anthropic将向欧盟网络安全局开放Mythos
Microsoft says it will not pursue security researchers after zero-day backlash
Horizon3.ai Launches Rapid Response to Secure the Era of AI-Powered Attacks
我研究了 100+ AI Skills 项目后的一些分享和判断
我研究了 100+ AI Skills 项目后的一些分享和判断
How to Get the Most From Your Explainer Video Production Services
Unknown hacker group targeted Russian maritime universities, diplomats for nearly two years
Webinar tomorrow: From alert to resolution in network incident response
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
- CVE-2024-21182 Oracle WebLogic Server Unspecified Vulnerability
This type of vulnerability is a frequent attack vectors for malicious cyber actors and poses significant risks to the federal enterprise.
Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the KEV Catalog as a living list of known Common Vulnerabilities and Exposures (CVEs) that carry significant risk to the federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet for more information.
Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of KEV Catalog vulnerabilities as part of their vulnerability management practice. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.